In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOBs in smb2_parse_contexts() Validate offsets and lengths before dereferencing create contexts in smb…
High CVSS 8.1
Summary
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOBs in smb2_parse_contexts() Validate offsets and lengths before dereferencing create contexts in smb2_parse_contexts(). This fixes following oops when accessing invalid create contexts from server: BUG: unable to handle page fault for address: ffff8881178d8cc3 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 4a01067 P4D 4a01067 PUD 0 Oops: 0000 …
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/13fb0fc4917621f3dfa285a27eaf7151d770b5e5 Patch
- https://git.kernel.org/stable/c/17a0f64cc02d4972e21c733d9f21d1c512963afa Patch
- https://git.kernel.org/stable/c/1ae3c59355dc9882e09c020afe8ffbd895ad0f29 Patch
- https://git.kernel.org/stable/c/6726429c18c62dbf5e96ebbd522f262e016553fb Patch
- https://git.kernel.org/stable/c/890bc4fac3c0973a49cac35f634579bebba7fe48 Patch
- https://git.kernel.org/stable/c/af1689a9b7701d9907dfc84d2a4b57c4bc907144 Patch
- https://git.kernel.org/stable/c/13fb0fc4917621f3dfa285a27eaf7151d770b5e5 Patch
- https://git.kernel.org/stable/c/17a0f64cc02d4972e21c733d9f21d1c512963afa Patch
- https://git.kernel.org/stable/c/1ae3c59355dc9882e09c020afe8ffbd895ad0f29 Patch
- https://git.kernel.org/stable/c/6726429c18c62dbf5e96ebbd522f262e016553fb Patch
- https://git.kernel.org/stable/c/890bc4fac3c0973a49cac35f634579bebba7fe48 Patch
- https://git.kernel.org/stable/c/af1689a9b7701d9907dfc84d2a4b57c4bc907144 Patch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html Mailing List
- https://security.netapp.com/advisory/ntap-20250117-0009/
Timeline
- nvd_ingest NVD